[Secure-testing-commits] r31291 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Jan 13 12:13:44 UTC 2015


Author: carnil
Date: 2015-01-13 12:13:44 +0000 (Tue, 13 Jan 2015)
New Revision: 31291

Modified:
   data/CVE/list
Log:
Add new entry for insecure use of /tmp in texlive-bin, #775139

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-01-13 10:13:04 UTC (rev 31290)
+++ data/CVE/list	2015-01-13 12:13:44 UTC (rev 31291)
@@ -1,3 +1,6 @@
+CVE-2015-XXXX [mktexlsr: insecure use of /tmp]
+	- texlive-bin 2014.20140926.35254-5 (bug #775139)
+	[wheezy] - texlive-bin <no-dsa> (Minor issue)
 CVE-2015-XXXX [directory traversal via symlinks]
 	- patch <unfixed> (bug #775227)
 CVE-2015-XXXX [buffer overrun in CHICKEN Scheme's substring-index[-ci] procedures]




More information about the Secure-testing-commits mailing list